Описание
An issue was discovered in openHiTLS 0.2.0 through 0.3.2. In the X.509 certificate chain verification, the basic constraints extension and CA flag processing of intermediate CAs are only verified for v3 certificates, and v1/v2 certificates are ignored.
Ссылки
EPSS
Процентиль: 23%
0.00308
Низкий
9.8 Critical
CVSS3
Дефекты
CWE-295
Связанные уязвимости
CVSS3: 9.8
github
10 дней назад
An issue was discovered in openHiTLS 0.2.0 through 0.3.2. In the X.509 certificate chain verification, the basic constraints extension and CA flag processing of intermediate CAs are only verified for v3 certificates, and v1/v2 certificates are ignored.
EPSS
Процентиль: 23%
0.00308
Низкий
9.8 Critical
CVSS3
Дефекты
CWE-295